SSL Security Test of reports-ah.ccng.bt.com

Test the SSL/TLS stack of your web or email server for security, cryptographic flaws and misconfigurations, and compliance with NIST & HIPAA
Free online tool with PDF report
  • Web Server SSL/TLS Security
  • Post-Quantum Cryptography (PQC) Readiness
  • Email Server SSL/TLS Security
  • PCI DSS, HIPAA & NIST Compliance
  • SSL Certificate Validity
  • Best-Practices Compliance
Free online tool with PDF report
180,775,065 tests performed
Provided "as is" without any warranty of any kind
248
tests
running
62,750
tests
in 24 hours
Tests in 24 Hours

Summary of reports-ah.ccng.bt.com:443 (HTTPS) SSL Security Test

Provided "as is" without any warranty of any kind.
This test was made 1908 days ago and may be outdated
Refresh Test
Date/Time:Feb 12th, 2021 11:54 GMT+0
Source IP/Port:212.108.16.187:443
Protocol:HTTPS
Location:Amsterdam, NetherlandsNetherlands
Your final score:
  • A
  • B
  • C
  • F
B

Executive Summary for reports-ah.ccng.bt.com

  • SSL/TLS Certificate Analysis
    1 SSL/TLS end-entity certificate(s) detected: the first certificate is a trusted RSA 2048 bits certificate with issuer DigiCert SHA2 Extended Validation Server CA valid until May 1, 2021. 1 certificate chain(s) detected. Show details.
  • PCI DSS Compliance Test
    2 of 20 supported cipher suites are not compliant with PCI DSS. The server supports only PCI DSS compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with PCI DSS: P-256, P-384 and P-521. No additional PCI DSS compliance issues were identified. Show details.
  • NIST and HIPAA Compliance Test
    2 of 20 supported cipher suites are not compliant with NIST and HIPAA. The server supports only NIST and HIPAA compliant protocols: TLSv1.1 and TLSv1.2. All supported elliptic curves are compliant with NIST and HIPAA: P-256, P-384 and P-521. There are 2 more issue(s) which make the server non-compliant with NIST and HIPAA: server does not support OCSP stapling, server does not support extended master sECret. Show details.
  • Industry Best Practices Test
    3 issue(s) related to industry best practices were identified: server does not support TLS 1.3, server does not prefer cipher suites providing PFS, server does not provide HSTS. Show details.
Please wait. Data is loading...
Please wait. Data is loading...